All reports
mediumGovernance attackEVM-Solidity

Salty.IO: Ballots not yet past their deadline are incorrectly looped too by tokenWhitelistingBallotWithTheMostVotes()

Payout
$0
Protocol
Salty.IO
Disclosed
Apr 19, 2024
Source
code4rena

The protocol suffered from a governance vulnerability where the finalization of token whitelisting proposals could be maliciously delayed. An attacker could create a new proposal and gain more votes than an existing, legitimate proposal that was nearing its de …

Similar reports

  • No close matches yet.

References

This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.